CN101569220A - Controlling the use of access points in a telecommunications network - Google Patents

Controlling the use of access points in a telecommunications network Download PDF

Info

Publication number
CN101569220A
CN101569220A CNA2007800458681A CN200780045868A CN101569220A CN 101569220 A CN101569220 A CN 101569220A CN A2007800458681 A CNA2007800458681 A CN A2007800458681A CN 200780045868 A CN200780045868 A CN 200780045868A CN 101569220 A CN101569220 A CN 101569220A
Authority
CN
China
Prior art keywords
base station
network
identifier
described method
subscriber
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CNA2007800458681A
Other languages
Chinese (zh)
Inventor
A·劳
P·埃德瓦德斯
P·霍瓦德
J·巴特金
J·L·卡里佐马蒂内滋
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Vodafone Group PLC
Original Assignee
Vodafone Group PLC
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Vodafone Group PLC filed Critical Vodafone Group PLC
Publication of CN101569220A publication Critical patent/CN101569220A/en
Pending legal-status Critical Current

Links

Images

Abstract

A GSM or UMTS mobile telecommunications network is disclosed. In addition to the conventional radio access network comprising the base stations (3), one or more additional access points (20) are provided. An access point (20) is connected to the network core (12) by an IP transport broadband connection. The access point (20) is configured to appear to the mobile terminal 1 as a conventional base station - that is, it communicates with the mobile terminal using GSM or UMTS transport protocols and does not require any modification to a standard GSM or UMTS mobile terminal. Access Points are typically not under the direct control of the network provider, and so are more susceptible to security threats, such as illicit eavesdropping of user data. Arrangements are therefore disclosed which allow the network provider to verify that the access point a mobile terminal is about to commence communicating through is a legitimate and trusted base station and/or is at a particular location. By confirming the legitimacy of the base station to the mobile terminal before communication commences, and accordingly before sensitive information is transmitted to the network provider via the base station, enhanced network security can be achieved. Differential charging may be performed in dependence upon a subscriber's location.

Description

The use of the access point in the control communication network
Technical field
The present invention relates to communication network, described communication network comprises the radio access network that is used for carrying out wireless transmission between mobile telecommunication apparatus and base station.The invention still further relates to and be used for the method and apparatus of controlling mobile equipment the communication access of one or more base stations.
Background technology
The tradition to feature and service that GSM and UMTS network are provided inserts the signaling that is included between portable terminal and standard base station (macro base station), and described standard base station has to the special use connection of MSC and by using cellular telecommunication (for example GSM or UMTS) host-host protocol to be provided at the covering in the occupied sub-district of portable terminal.Following suggestion has appearred recently: by the feature that for example provides the extra particular base station (femto (femto) base station) that is known as access point (AP) to allow in subscriber's family GSM and UMTS network are provided and the access of service, so that increase network capacity.These access points communicate with core network via IP-based communication (such as broadband IP network), and carry out route via the internet usually.
AP has had a lot of different titles, and such as family's access point (HAP), little base station, slight (pico) base station, Pico cell and femtocell or the like, but all titles all refer to identical equipment.AP provides short distance, localization to cover, and is bought by the subscriber usually and be installed in its family or the workplace.
Also proposed at present to use AP in Long Term Evolution (LTE) communication network in exploitation at present, but do not implemented as yet.LTE may be the next generation network embodiment after the 3G.
The advantage of introducing AP in existing communication network is: implementing enough number AP parts, the power level of grand covering can be lowered, and reason is that the requirement to macro base station has reduced.Power reduces the saving that can bring fund certainly.
Use is connected to the access point of core network via IP network another advantage is: existing wideband digital subscriber line (DSL) connects and can be used to portable terminal and network core coupled together and do not use the radio access network of mobile telecom network or the capacity of transmission network.In other words, AP is integrated in the DAL modem/router, and uses DSL that business is returned (backhaul) to communication network.
Another advantage is: AP can provide the mobile network to insert to the place that does not have radio access network to cover.Thereby, but when being installed in when covering in the building that the not good DSL of having connects from the radio net of grand network, estimate that their can be useful especially.In addition, AP can not have 3G to cover therein at all and may only have the place of GSM covering to provide UMTS to cover.
However, because these access points are not the traditional base stations, so an other difficult problem occurred.Especially, because being deployed in usually, access point directly is not subjected in the environment that Network Provider controls, so wish that can use their subscriber for each guarantees the safety of these access points.
Current, communication network supplier comes to provide different call tariffs (tariff) for them according to the subscriber position sometimes.For example, a kind of this type of service provides more cheap rate to these subscribers when the subscriber uses themselves portable terminal in its family.
Referring to Fig. 3, in a kind of known implementation of this type systematic, after the subscriber subscribed the service of reduction rate, core network 140 which base station of identification and then which sub-district provided covering for subscriber family.These base stations are called as subscriber's Home eNodeB.Each base station has unique sub-district ID, and unique sub-district ID of these Home eNodeB is recorded according to subscriber's profile (profile).In the example of Fig. 3, the base station with sub-district ID 1245 and 1234 provides the covering to subscriber family, and therefore is recorded in the network data base 160 with subscriber's profile.Base station with sub-district ID 1256 is not registered as Home eNodeB, and reason is that it does not provide the covering to subscriber family.
Therefore, when the subscriber communicates on the mobile network and be arranged in its family, this subscriber's communication service will be by from Home eNodeB with sub-district ID 1245 or 1234, by controller (for example radio network controller (RNC) the 3G) 130, route to core network 140 forward, and described core network 140 comprises MSC 135.
During call establishment, core network can receive the sub-district ID of subscriber's MSISDN and the base station that the subscriber communicates with it.In order to confirm with which kind of rate to come the subscriber is chargeed, core network 140 checks whether the subscriber is using one of Home eNodeB that covers its house 10.This inspection be by seek advice from location-based charging (LBC) module 150 and database 160 and will call out in the corresponding contents stored in the MSISDN that identified and sub-district ID and the database compare and realize.If the sub-district ID of MSISDN is subscriber's the ID that writes down one of Home eNodeB, then this subscriber is identified as and calls out from its family and to reduce rate it is chargeed, otherwise with standard rate it is chargeed.In the example of Fig. 3, when calling out by the base station 1245 and the 1234 couples of subscribers when carrying out route but when not carrying out route, will use the reduction rate by 1256 pairs of these callings in base station.
Given this, AP provides the chance that reduces rate for Network Provider provides another for the subscriber.For example, when using its portable terminal by the AP that takes on the base station, the subscriber can benefit from different call tariffs.
Consider its potential mobility, these access points are being implemented as in the process of traditional base station, other other difficult problems occurred.Ideally, AP is introduced into communication network and remains fixed in this place.However, exist the subscriber may determine to redeploy its access point for the possibility of using in the different location.Can go wrong under the situation of reduction rate because of its AP is obtained from its family as the base station the subscriber, reason is their rate that can be potentially be reduced in other positions by redeploying AP.Therefore need to determine the position of AP so that determine whether to use the reduction rate.
About ambulant another problem of AP be: in particular locality, mobile communication supplier be assigned with frequency spectrum, can discern the position of their all base stations that comprise AP so it is highly important that them, and reason is that AP is equal to macro base station on function.In fact, the adjustment regulation that is proposed may require the telecommunication supplier to know the position of all access points in its network.Therefore, need be before allowing to communicate or activate the position of determining AP before the AP.
Summary of the invention
According to a first aspect of the invention, the method of a kind of user's of being mobile device affirmation through the legitimacy (validity) of (IP connected) base station that IP connects is provided, subscriber's mobile device communicates by described base station, and this method comprises: receive initial signal via the base station from mobile device; The base station of initial signal is transmitted in identification; Determine whether the base station of being discerned is legal (valid) base station; And transmit the appropriate responsive signal to mobile device.
Preferably, only when the base station is identified as access point, just carry out determining step.
In this respect, because access point is not subjected to the direct control of Network Provider, so they are vulnerable to security threat, as illegal eavesdropping to user data.Therefore, this respect of the present invention allows Network Provider to verify that it is legal and believable base station that the portable terminal desire begins by its access point that communicates.By before communication beginning and and then in the legitimacy of confirming before Network Provider transmits sensitive information via the base station the portable terminal base station, can realize the internet security that strengthens.
The process of determining the base station legitimacy can be confirmed the geographical position of base station.
This method can comprise by determining that the base station identifier of distributing to the base station discerns the base station.This method can also comprise by the Route Distinguisher of determining the base station discerns the base station.Base station identifier can comprise the MAC Address of base station or other unique or common unique identifiers of base station.Route Distinguisher can comprise the DSL ID of the IP address and/or the base station of base station.
As a kind of alternative of using Route Distinguisher, perhaps except using Route Distinguisher, can determine the telephone number of base station, for example determine by CLI.
Description of drawings
For understanding the present invention better, hereinafter will by example some embodiment be described with reference to the accompanying drawings, wherein:
Fig. 1 is the schematic diagram of the key element of mobile telecom network;
Fig. 2 shows and is used for except from the received communication of traditional base station, also receives the modified mobile telecom network of IP-based communication from access point;
Fig. 3 shows the schematic diagram of the key element of the mobile telecom network that is used to explain the known method that is used to the subscriber who uses portable terminal when being in to reduce rate, and
Fig. 4 illustrates according to another embodiment of the present invention, be used for verifying the schematic flow diagram of process of position of the AP of mobile telecom network.
In these accompanying drawings, be generally same element and specify identical Reference numeral.
Embodiment
The key element and the operation thereof of mobile telecom network are briefly described referring now to Fig. 1.
Each base station (BS) is corresponding to the respective cell of its honeycomb or mobile telecom network, and in circuit commutative field or packet-switched domain one or both of, utilize radio communication from this sub-district the portable terminal receipt of call or transmit to it and to call out.Show this type of subscriber's portable terminal at 1 place.Portable terminal can be hand held mobile phone, PDA(Personal Digital Assistant) or the laptop computer that has been equipped with data card.
In the GSM mobile telecom network, each base station comprises base transceiver station (BTS) and base station controller (BSC).BSC can control the BTS more than.BTS and BSC comprise radio access network.
In the UMTS mobile telecom network, each base station comprises Node B and radio network controller (RNC).The RNC may command is more than one Node B.Node B and RNC comprise radio access network.
In the LTE mobile telecom network that is proposed, each base station comprises eNode B.Form with grouping is arranged the base station, and every group of base station controlled by Mobility Management Entity (MME) and user plane entity (UPE).
By convention, arrange base station and every group of base station to control with the form of grouping, as be used for the MSC 2 of base station 3,4 and 5 by a mobile switching centre (MSC).As shown in fig. 1, this network has another MSC 6, and it controls other three base station 7A, 8 and 9.In practice, this network can contain than much more MSC and the base station shown in Fig. 1.The special use (non-sharing) that base station 3,4,5,7A, 8 and 9 all have to their MSC2 with MSC6 is connected, and is generally cable and connects.It is congested and reduce because other business cause that this has prevented transmission speed.
Communicating by letter in MSC 2 and the MSC 6 support circuit-switched territories is generally audio call.Provide corresponding SGSN 16 with 18 to support communicating by letter in the packet-switched domain, as the GPRS transfer of data.SGSN 16 is similar with 6 to MSC 2 with 18 operational mode.SGSN 16 and 18 has been equipped with the equivalent at employed VLR 11,14 in the packet-switched domain.
Each subscriber of this network is provided with smart card or SIM, when being associated with subscriber's portable terminal, and the subscriber of described smart card or SIM recognition network.With unique identification number (" international mobile subscriber identification number " (IMSI)) SIM card is carried out pre-programmed, this identification number is sightless on card, and is unknown for the subscriber.For the subscriber distributes known number, i.e. subscriber's telephone number, the caller initiates calling to the subscriber by this telephone number.This number is MSISDN.
Network comprises attaching position register (HLR) 10, and for each subscriber of this network, attaching position register 10 has been stored IMSI and corresponding MSISDN and other subscriber datas, such as the current of subscriber's portable terminal or MSC or SGSN that last time is known.
When portable terminal 1 was activated, it was by transmitting IMSI (reading from the SIM card that is associated with it) and at network himself is registered to being arranged in wherein specific cell associated base station 3 with terminal 1.In legacy network, after this base station 3 is sent to MSC 2 with this IMSI, and wherein register to MSC 2 this base station 3.In the network of the function described in using 3GPP TS 23.236, the base station is followed the rule of defined and is selected to use which MSC, and after this this IMSI is sent to selected MSC.
MSC 2 visits the suitable memory cell among the HLR 10 that is present in the core network 140 now, and extract corresponding subscriber MSISDN and other subscriber datas from this suitable memory cell, and it is stored in the memory cell in the visitor location register (VLR) 10 temporarily.Therefore, by this way, certain subscriber is registered to specific MSC (MSC 2) effectively, and this subscriber's information is temporarily stored among the VLR (VLR14) that is associated with this MSC.
Among the MSC of network (MSC 2 and MSC6) each all has the VLR that is associated with it (14 and 11) separately, and moves in the mode identical with aforesaid way when the subscriber activates portable terminal in one of one of the base station controlled with this MSC corresponding sub-district.
When the subscriber who uses portable terminal 1 wished to call out, they imported called party's telephone number in a usual manner.This information is received and is reached MSC 2 by base station 3.MSC 2 routes the call to the called party.By the information of being preserved among the VLR 14, MSC 2 can be associated this calling with certain subscriber, and thereby record be used for the information of billing purpose.
Just described function also can be applicable to the LTE mobile telecom network that proposed, and its eNode B carries out the function of base station, and MME/UPE carries out the function of MSC/VLR.Should recognize that just described function is to implement an example of the network of embodiments of the invention therein.
Fig. 2 shows and is used for that these two provides the element to the access of GSM or UMTS network by traditional base station 3 and access point (AP 20).AP 20 communicates via radio link 21 and portable terminal 1.
In these embodiments, the radio link 21 between AP 20 and the portable terminal 1 uses the cellular telecommunication host-host protocol identical with traditional base station 3, but its coverage is littler, for example 25 meters.AP 20 shows as the traditional base station for portable terminal 1, for operation A P 20 need not portable terminal 1 is made any change.AP 20 carries out the corresponding task of task with GSM BTS 22 and BSC 26 and/or UMTS Node B and RNC and/or LTE eNode B.
Communicating by letter between access point 20 and the core network 140 23 is based on the communication of IP, and can be for example to transmit (and carry out route via the internet) on broadband IP network.Carry out route via MSC 32 or 34 pairs of communications of SGSN.The cellular telecommunication transport protocol conversion that access point 20 will be used for the signaling of between portable terminal 1 and AP 20 employed traditional GSM or UMTS network is IP-based signaling.
Being connected between access point 20 and the core network 140 23 can be used the pstn telephone network.Usually, the connection of DSL cable is connected to the PSTN network with access point 20.Data are transmitted between access point 20 and core network 140 by IP transmission/DSL transmission (passback connects).
Access point 20 can be connected to core network 12 by the mode that is different from DSL cable or PSTN network.For example, access point 20 can connect by the client cables that is independent of PSTN or access point 20 is connected with satellite between the network core 140 and is connected to core network 140.
Use has advantage via the access point 20 that IP network is connected to core network.Existing broadband DSL connects and can be used to portable terminal and network core 140 coupled together and do not use the capacity of mobile telecom network radio access network, perhaps can be in the place use that does not have conventional wireless electricity access network to cover.For example, do not having traditional UMTS to cover the place of (may only have GSM to cover), access point 20 can provide UMTS to cover.
Except the GSM/UMTS/LTE network, AP 20 can be configured to the WLAN that is arranged in family or office usually service is provided.WLAN can belong to the subscriber of portable terminal 1, and is the WLAN of independent operation.The owner of AP 20 can programme so that it is for opening (open) or closing (closed) to AP, the AP that Open from This Side can carry the communication from the mobile device in the GSM/UMTS network, and the AP that closes only can carry the communication from specific preassigned mobile device.
In an embodiment of the present invention, can control by AP itself or network by the communication of the AP that closes.Usually, when registration AP, the owner can specify those subscribers that are allowed to communicate by this AP.These subscribers can be identified and be recorded in the register by their IMSI or MSISDN.
In certain embodiments, register is stored on the AP.When attempting communicating by AP, the subscriber transmits his IMSI (or MSISDN) as the part of call setup procedure.After this AP compares IMSI and register.If IMSI appears on the register, then communication is allowed to also be continued to route to network.Under this IMSI does not appear at situation on the register, do not allow to communicate.In this case, can be by signalisation subscriber from AP, perhaps AP can send signal to seek different AP or macro base station to the subscriber.
In other embodiments, register is stored on the network with the sign of access point.Can discern AP by Access Point Identifier.When the AP signaling is communicated by letter, AP is forwarded to network with IMSI with its AP ID.After this network compares this IMSI and the IMSI that registers to this AP.If IMSI (or MSISDN) is at this AP registration, then network will only allow to call out and be directed into this AP.If the subscriber to this AP registration, does not then call out or is terminated or is directed into grand network.
Certainly,, then need not to select IMSI, and can be directed by AP from the communication of any IMSI if AP is designated as the AP of unlatching.The AP of such unlatching does not need the IMSI register that allowed.
Because AP is not directly controlled by Network Provider, so there is relevant therewith safety problem.For example, following situation is possible: for the sensitive information that obtains transmitting between portable terminal that uses access point and core network, AP be can be used for replacing legal AP by (bogus) AP of steal and personation.For example, the AP of personation can send the IMSI request near the idle GSM/UMTS mobile device that is positioned at the AP.After this AP of this personation can obtain IMSI information, and uses this IMSI information in being sent to the service request of core network.After this, the information that receives by the initiation service request can be used for subscriber's account is illegally used.Therefore, be indispensable but AP provides other fail safe of acceptor level to the user, otherwise the subscriber will be discontented to network.
At network, to communicate also be indispensable to the AP that the subscriber can not be by personation, and reason is that this type of inserts the unwarranted access that after this can be used to obtain to core network element, such as via not protected O﹠amp; The M interface.After this this unwarranted access can be used to be full of core network and cause denial of service with malice, for example to steal customer data or to swindle by controlling billing data.
Therefore, according to the first embodiment of the present invention, network provides a kind of being used for to begin the mechanism before network transmits sensitive information the sign of AP confirmed via AP at portable terminal.
In this, when the subscriber wished to activate portable terminal 1 in the network (calling out or receipt of call so that after this it can send), the subscriber put into its SIM card the card reader that is associated with portable terminal 1.Terminal 1 is sent to the base station with its IMSI (reading from SIM card) then.
After this base station 3,20 that receives this communication can be sent to IMSI MSC 2,32, and register to MSC 2,32 base station.In the network of the function described in using 3GPP TS 23.236, the base station is deferred to the rule of defined and is selected to use which MSC, and after this this IMSI is sent to selected MSC.
In following examples, each base station 3,20 has the Media Access Control Address (MAC Address) of this base station of sign.MAC Address normally is assigned to the unique code of the interconnected hardware of various ways.Hardware is given by permanent allocation usually in this address, so that the base station has unique MAC Address.Can discern access point 20 by a certain other forms of unique Access Point Identifier.Usually, this class identifier is known as Access Point Identifier (AP ID).
After this MSC 2,32 inquires core network by the information that transmits IMSI and sign base station 3,20 to core network, so that determine whether this base station is legitimate base station.When core network 140 when MSC 2,32 receives request signal, it extracts MAC Address, when this information was forwarded to MSC 2, the base station coupled together this MAC Address and IMSI information.
After this core network uses MAC Address to determine whether this base station is legitimate base station.For example, the core network base station that can use MAC Address to determine to have this MAC Address is macro base station or AP.Determine that at core network this base station is under the situation of traditional macro base station 3 but not AP, network to MSC 2 backhaul signals with notice: allow to communicate by this base station.After this MSC 2 can allow portable terminal 1 to continue to register to base station 3.This is because traditional macro base station 3 is subjected to the control of core network fully, and therefore is not vulnerable to the steal with AP 20 same degree.
Therefore, notifying base station 3 under the situation of legitimate base station to MSC 2, after this MSC2 puts up with the matters inquiry core network to the base station registered mobile terminal.In this process, the suitable memory cell that core network can allow MSC 2 to visit among the HLR 10 that is present in the network core 12, and from this suitable memory cell, extract corresponding subscriber MSISDN and other subscriber datas, after this it is temporarily stored in the visitor location register (VLR) of MSC 2.Like this, certain subscriber can be registered to MSC 2, and among the VLR that this subscriber's information is temporarily stored in this MSC is associated.
Transmit under the situation of its IMSI to base station 20 at portable terminal 1, as AP, after this this AP will be forwarded to MAC 32 with IMSI information by IMSI information is linked to each other to fetch with its MAC Address.After this MAC 32 puts up with the matters inquiry core network 12 of the legitimacy of determining AP 20.When core network received request signal from MSC 32, it can utilize the MAC Address that is received that base station 20 is identified as AP.After this network compares MAC Address and the tabulation of permission by the MAC Address of its AP that communicates.After this whether network allow to communicate by this AP with notice to MSC 32 backhaul signals.
Should recognize, can core network 140 and/or with MSC that the base station is associated in carry out the identification of base station.Therefore, current embodiment only is looked at as a kind of possible analytical equipment that can realize described function.
Just described embodiment is preventing very effective aspect the deception of legal AP.However, those embodiment may prevent the data that owner's eavesdropping of legal AP transmits by AP, if their selections like this.
Another embodiment of the present invention has solved this other problem.According to this another embodiment of the present invention, each subscriber can specify equipment that they allow them by its AP that communicates, but not keeps the database of all credible AP.Like this, the subscriber can list one or more AP that they believe.
Therefore, according to this embodiment of the invention, when MSC 32 inquiry core networks 12, core network manages to verify AP by visit to the tabulation of the specific AP that allows of mobile device IMSI.One or more MAC Address of the AP that allows are described in this tabulation in detail.Core network is after this to MSC 32 notice results relatively.Under the situation that coupling occurs, transmit proper signal with notice MSC 32, after this continue in a known way to AP registration subscriber.
The subscriber can allow by the details of its AP that communicates on the website that for example is assigned with or by match and create via network transmission data the tabulation of the AP that allows with the base station by importing them.
Therefore the above embodiment of the present invention provides other certainty of booster stage of the access point legitimacy aspect that they utilized for the subscriber.However, AP 20 by rogue (rogue) situation that AP cheated under, rogue AP can utilize the MAC Address of AP 20.In this respect, experienced hacker still can find out authorized MAC Address, and legal address and obtaining network and the wherein visit of information disguises oneself as.However, rogue AP does not have identical AP address, telephone number, and is used as the identical DSL port of credible AP insertion, and can not be in the tram.Therefore, can discern rogue AP by one of these extra signs.This type of embodiment is described now.
The fact that the another embodiment of the present invention utilization is such: the IP address of transmitting the AP of IMSI to MSC 32 also is included in the IMSI signal of communication.When MSC 32 when portable terminal receives the initial IMS I signal, its inquiry core network 12 also is sent to core network with this IMSI signal of communication.
After this core network 12 can determine to transmit the MAC Address of the base station of IMSI signal, and base station 20 is identified as AP.After this core network also can determine the IP address of base station.After this compare the database of credible AP and check that the MAC Address that is associated with this IP address is to verify the legitimacy of AP 20.The MAC Address of all legal AP of data-base recording of credible AP and they IP address separately.
Therefore, when not matching, then can identify the AP of personation when the IP address of the AP that transmits from IMSI information to MSC and for the desired address of MAC Address.When identifying the AP of personation, core network can not allow portable terminal to register to this AP.
According to another embodiment of the present invention, can be when portable terminal 1 keeps activating repetitive identified process termly, in case to prevent that terminal from just taking over legal AP to the AP that specific AP has carried out registration, personation.In this respect, portable terminal can be configured to transmit makes regular check on signal, and perhaps MSC can be configured to regularly inquire portable terminal so that initiate inspection.
According to extra embodiment, it is possible that AP is assigned with dynamic IP addressing.In this case, when checking the tabulation of the AP that allows, core network 12 will recognize that relevant MAC Address is associated with dynamic IP addressing.Therefore, after this core network will inquire what dynamic IP addressing supplier is with the current IP address of determining to distribute to AP, and with this address with compare so that determine whether this AP is legal AP from the received address of MSC 32.
Replacedly, core network can regularly be inquired dynamic IP addressing supplier so that guarantee that the dynamic IP addressing in the tabulation of the AP that allows is constantly kept upgrading.As another alternative, dynamic IP addressing supplier has a responsibility for notice core network when distributing each dynamic IP addressing so that keep the up-to-date tabulation of the AP that allows.
These embodiment of the present invention can implement on the AP that opens or close, although they are the most useful for the AP that opens.Be under the situation of the access point of closing at AP, the IMSI that transmits mobile subscriber carried out checking to AP for network before, AP can carry out its oneself access control at local (for example at the AP place).Replacedly, can carry out access control at core network 12 places.
Just described embodiment is relevant with MSC 2 and 32, and the communication in its support circuit-switched territory is generally audio call.Provide corresponding SGSN 16 with 18 to support communicating by letter in the packet-switched domain, such as the GPRS transfer of data.SGSN 16 is similar with 32 to MSC 2 with 18 operational mode.SGSN 16 and 18 has been equipped with the equivalent at the VLR that is used for packet-switched domain.
Just described embodiment is also relevant with the portable terminal of initiating communication.However, the present invention is equally applicable to the communication initiated by calling party.In these cases, when the portable terminal in the calling party call try network, this portable terminal necessary paged (page).Paging is the process of broadcast, and the specific portable terminal of this prompting message is taked some action, in this example, has incoming call to be received with the notice terminal.In case terminal receives this broadcast, it will seek to register to suitable base station as described in the foregoing description.
Replacedly, the present invention is applicable to the transfer between different base station under the situation about moving during portable terminal is being called out.According to above description, should be appreciated that the overlay area of mobile telecom network is divided into a plurality of sub-districts, each sub-district is by the corresponding base station service.Still keep when overseas calling out in order to allow portable terminal to move to cell footprint, must automatically this calling be switched to interchangeable sub-district at it.In this example, under the situation of existing base station adapter, will carry out proof procedure a base station, be legitimate base station with the base station of guaranteeing to take over.
In some the foregoing description, used the IP address to help AP is authorized.Replacedly, network may wish more clear and definite identification is carried out in the position of this AP.The embodiment that realizes location recognition uses DSL ID, CLI and Network Sniffing.The embodiment that relates in these technology each is discussed now.
Access point can join with the specific DSL join dependency that AP is inserted, and this specific DSL connection has unique ID (DSL ID).DSL ID is the port numbers of telephone call office (switchingexchange), and can be mapped to particular home or business address usually.For example, the DSL port in the family can have unique DSL ID.In an embodiment of the present invention, core network 12 is preserved access point MAC Address (or other AP ID) and the database of the DSL ID that is associated.When registration AP, network can obtain DSL ID.For example, at registration AP for before using, network may require to the operating period between the DSL ID that is associated of DSL circuit that AP inserted confirm.Under specific circumstances, can register for using access point more than a DSL ID place.For example, if the user wishes that at the access point that uses him more than one position then this can be easily.
In a preferred embodiment of the invention, MAC Address (or other AP ID) and DSL ID are transferred into network at special time.For example, when setting up communication by AP, when request of receiving automatic network and/or AP activation, when receiving MAC Address and DSL ID, its database of Network Check is to confirm whether this AP is used at the DSL ID place that this AP was registered.If the DSL ID that this DSL ID and AP are registered is complementary, then this AP can be authorized to, and determines that perhaps it is not personation AP.However,, then this AP is not authorized, perhaps determine that it is personation AP if the DSL ID that received DSL ID that is used for AP and database are stored does not match.
In some cases, when AP connects via the DSL cable, will make DSL ID unavailable for Network Provider.Usually, if Network Provider takes on ISP, if perhaps have the company of relation (for example partnership relation) that ISP is provided with Network Provider, then Network Provider will be allowed to visit and go to access point and the DSL ID that is associated from communicating by letter of this access point.However, if it doesn't matter for Network Provider and ISP, then Network Provider may not can know the position that access point is inserted into ISP.Therefore, use for going up in its existing Internet service provider (ISP) if the subscriber wishes to install access point, then network may not can be seen the DSL ID that its access point inserts.In this case, ISP can be directed to network to the business from access point together with AP ID, but DSL ID can not be forwarded to Network Provider.In such system, Network Provider can discern the access point and the MSISDN/IMSI of (according to AP ID) calling party, but can not know the residing physical location of access point, reason is that it is not apprised of the DSLID that the DSL port that inserted with access point is associated.In this case or under other situations, the IP address may be unavailable for Network Provider.
For the network that hope detects access point position, for example reduce rate or satisfy the adjustment regulation that the requirement Network Provider of institute knows the position of all AP in its network for the subscriber provides according to access point position, this can have problems.It can further stop the discriminating of AP being carried out by checking AP sign.
Therefore, another embodiment of the present invention makes Network Provider can determine the position of access point when the subscriber communicates by ISP, and for this ISP, network be can't see its DSLID and do not known DSL ID, and can't see the IP address.Hereinafter will this embodiment be described at Fig. 4.
Be about to buy or the registration access point in, whether network will discern the subscriber and plan to use AP via ISP, understand between the operating period at this AP for this ISP and inform DSLID to network.If not, then can require the subscriber to provide the calling line id that is associated with the DSL circuit (CLI) for network, the subscriber wishes to guide business from their access point by this DSL.In fact, CLI is the telephone number that is associated with the DSL circuit, and all has unique CLI in every fixed line.In all communication period from this DSL, CLI is transmitted.After this CLI part that is used as subscriber's profile is stored in the network data base 350 with AP IP, MSISDN etc., shown in the step 1 among Fig. 4.
In use, access point 300 is connected to DSL modulator-demodulator 310 and after this is connected to ISP via DSL filter/separator 320.Access point 300 also connects via simulation POTS and is connected to PSTN via DSL filter separator 320.In this respect, AP 300 comprises the analog telephone ability.AP is configured in step 2, dials the predefine telephone number by its simulation POTS connection when powering up.Preferably, the predefine telephone number is the interactive voice response (IVR) 330 that is associated with network.As standard call set up in the process desired, the CLI that is associated with this circuit is transferred into the destination called number.Therefore, IVR can determine the CLI that is associated with the incoming call of this AP easily.
When receiving incoming call, IVR 330 is the AP ID of request call access point also.Preferably, AP discerns this request and returns its AP ID automatically by using dtmf tone to transfer.However, replacedly, pre-configured by to AP, this process is full automatic, APID is preferably transmitted automatically and is not needed to come the prompting of automatic network thus.In another alternative, subscriber's (for example keyboard by being associated with AP) input manually is used for the contact number and the AP ID of this network.IVR also can be used to only receive the CLI that is associated with this AP.
Should recognize that IVR 300 only is the exemplary apparatus that network receives AP ID and CLI, and can use distinct device.
When receiving CLI and AP ID, in step 3, IVR 330 is forwarded to access controller 340 with CLI and AP ID.In step 4, access controller 340 compares those values of being stored in CLI and AP ID and the AP database 350.If those that stored in CLI and AP ID and the database are complementary, then network can confirm that AP just is used at its position of registering the subscriber.If for this specific AP, CLI and the CLI that is registered do not match, and then network can determine that this AP is not used in its position of registering.
In the alternative of this embodiment of the present invention, AP is registered for using in a plurality of positions.This is to register a plurality of CLI by the subscriber's profile in the comparison database 350 to realize.
In another alternative, periodically carry out analog call, so that allow Network Check AP to remain on identical CLI in some time interval after powering up to network.If Network Recognition go out this CLI no longer with subscriber's profile in the CLI that identified be complementary, then it can be to the AP move instruction to close the 3G air interface.Such instruction can be via ISP or aloft is sent out.
Therefore, these embodiment of the present invention that describe with reference to Fig. 4 make Network Provider can confirm the position of AP under it does not know the situation of DSL ID that AP communicates by it and/or IP address.
In another embodiment, network or AP can determine whether AP uses in the position that is authorized to according to the grand network radio condition in this locality usually.For example, when the subscriber registers its AP, its may sign its wish to use the position of this AP, his family or office space for example.After this network can determine radio condition according to the grand network of those positions.For example, this can be according to the sub-district ID of home base stations.After this these can be stored on network place and/or the AP.At special time, for example when powering up, when beginning to communicate by letter and/or when receiving the request of automatic network, can point out AP to notify local grand radio condition to network.If local conditional with do not match at those conditions that this AP registered, then AP can not be authorized to.For example, if the measured home cell ID of AP is inequality with the ID that is its registration, then AP can not be authorized to.
Network selecting is used the contract that can be depending on the subscriber about the mode of this information of AP position.For example, can only allow the subscriber to use the AP of the CLI of comfortable its place registration.Embodiment shown in Fig. 4 is suitable for this class to be used.If AP connects the CLI that and the CLI on subscriber's profile is complementary from it, then network can transmit activation signal to AP via ISP.Only activate the 3G air interface of AP in response to the received signal of network.If the CLI that is stored on CLI and the subscriber's profile is not complementary, then AP can not be activated.In this case, network can transmit signal, and this signal triggering AP does not allow to use the 3G air interface of AP to remind the user.
Above-mentioned example shows network may be to the some kinds of modes that AP authorizes or AP may authorize oneself.These comprise checks IP address, DSL ID or grand radio condition.Network can be selected to use this positional information in some kinds of modes, and this depends on the contract between subscriber and the network or can specify by the legal requiremnt to network.For example, may not allow other positions those positions that are registered except that AP to activate AP.In this case, be positioned at other positions outside its position of registering if detect AP, then network can take action to close the radio (radio) of this AP or (deactivate) this AP that stops using.If when starting, detect AP, then may can not activate this AP.This can handle by aerial signal or the IP-based signal that is sent to AP.Replacedly, network may directly be refused to guide calling by this AP.The position of AP also may influence the used rate that charge to the subscriber.
Core network 12 can be configured to when portable terminal 1 is connected to core network 12 via access point 20 rather than traditional base station according to different bases, charge at the communication service that offers portable terminal 1.Hereinafter will describe in detail and the relevant embodiment of mechanism that promotes the different charge model.
Access point 20 can be configured to order portable terminal 1 demonstration indication when portable terminal is connected to network core 12 via access point 20, indicates such as vision.If come communication service is chargeed according to different bases when portable terminal 1 is connected to core network 12 via access point 20, then this can be particularly useful.
As mentioned above, AP can be " unlatching " AP or " closing " AP.AP or core network can be configured to determine whether qualified enjoyment rate reduce certain subscriber as to mobile network's inlet point the time using given AP.Qualified enjoyment is commonly referred to as " owner " by the subscriber of the reduction rate of AP, is known as " visitor " and be allowed to use this AP still not have qualification to enjoy the subscriber who reduces rate.For specific AP neither " owner " also non-" visitor's " subscriber does not have qualification to use this AP.When identifying this type of subscriber who attempts to call out by this AP, network can not carry out route to calling by this AP, but stops this calling or route the call to grand network.Can discern the subscriber by subscriber's MSISDN.Replacedly or in addition, can discern the subscriber by IMSI.Should be appreciated that the same replaceable IMSI of being of MSISDN related in following examples.
All owners' MSISDN is stored in the database in the network with MAC Address/AP ID address/DSL ID.Can between registration or installation period, confirm these MSISDN, perhaps can later these MSISDN be added into database.The owner be stored in the different tabulations with the visitor or in the different zones so that the two is distinguished.
If AP is the AP that closes, then database also will comprise visitor's MSISDN.The AP that opens can carry the communication from any mobile device in the GSM/UMTS/LTE network, and the AP that closes can only carry the communication from specific preassigned mobile device.Usually, the owner of AP can specify their AP be open or close.
Table 1 provides the example at the data of the AP that closes that will be stored in the database, it allows two " owners " to enjoy the reduction rate when using this AP, and allow four " visitors ", but can only be with its normal rate via this AP access to mobile network.
AP ID Owner MSISDN Visitor MSISDN (AP that only closes) DSL-ID
AP-123 07766xxxxx1 07766xxxxx3 VF-123
07766xxxxx2 07766xxxxx4
07766xxxxx5
07766xxxxx6
Table 1
Consider the example of table 1, when the subscriber called out by AP, access controller can receive subscriber's MSISDN and available MAC Address/AP-ID and/or IP address/DSL-ID.Reduce rate for whether the checking subscriber is authorized to enjoy, recorded data is checked received data in the access controller comparison database.For example, if subscriber's MSISDN is listed in " owner " at received AP ID and/or DSL ID, then the subscriber enjoys the reduction rate with qualified the calling at this.More particularly, referring to table 1, when received AP ID is that AP-123, received DSL-ID are VF-123 and subscriber's MSISDN when being 07766xxxxx1 or 07766xxxxx2, access controller can be verified as the subscriber owner that qualified enjoyment reduces rate.
On the other hand, at subscriber's MSISDN is under the situation of one of 07766xxxxx3-6, and access controller can be verified as the visitor with the subscriber, and therefore when being connected to DSL-IDVF-123, allow this subscriber to communicate, do not reduce rate but there is qualification to enjoy by AP-123.In addition, because this example relates to the AP that closes, every other subscriber (for example 07766xxxxx7) is not allowed to use this AP.
Preferably, reduce for enjoying rate, received AP ID and DSL ID value these two all with database in those values of being stored be complementary.This be because, if those in AP ID and MSISDN and the database are complementary, but DSL ID does not match, then this will mean the subscriber just from use this AP at different position, the position that AP registered.Therefore, should call out, it is more desirable that the subscriber disqualification enjoys the reduction rate.However, should recognize that network can allow the subscriber to register a plurality of IP address/phone number/DSL ID at given AP.This owner that can give AP uses aspect the AP with certain flexibility ratio at a plurality of different registration location places.
In the variant of this embodiment, a kind of interchangeable benefit (benefit) is provided for the subscriber, rather than the subscriber obtains to reduce rate.For example, other attainable benefits are included in the benefit of the free talk time aspect on loyalty awards plan and the grand network.
In another variant of this embodiment, the owner can be realised as in each specific region with the visitor zone and reduce or different benefits for the subscriber provides different tariff.For example, when using AP to insert mobile telecom network, listed subscriber also can obtain rate and reduces in the visitor zone, but this reduction rate will be and offer the subscriber's who is listed in " owner " different rate reduction.Replacedly or in addition, when the visitor utilized this AP, the owner can acquire benefit.
It should be apparent that for those skilled in the art just how DSL ID determines to check when with which kind of rate the subscriber being chargeed an example of AP position at network.IP address, grand network radio condition and CLI can both offer help and discern the information of AP position, and after this it can be used to determine whether AP is positioned at the position that the wherein qualified enjoyment of subscriber reduces rate or other benefits.For example, if AP connects by its CLI that registers, then network can reduce rate with it subscriber is chargeed.However, if CLI does not match with the CLI of registration to this AP, then but network can allow AP to be activated can the subscriber be chargeed with higher rate.
In case the position of known AP, network just can monitor that the subscriber that calls out by this AP is whether qualified and charge to reduce rate perhaps whether they are allowed to use AP.After this can compare network data base and check the MSISDN/IMSI that calls out by this AP, and network can determine whether and should charge to this caller to reduce rate.Replacedly or in addition, if determine that AP is positioned at its unregistered position, if for example DSL, IP address or CLI and be associated with this AP those do not match, then network can not allow the business of being undertaken by this AP.In a preferred embodiment, network this AP that can stop using.
In another alternative embodiment, the data-base recording of believable AP the AP ID address and their the grand network radio condition of DSL ID/IP address/phone number/CLI/ separately of all legal AP, under their known situations.Core network can check that then in these extra signs any one is to verify whether this AP is legal AP.
Just described embodiments of the invention should not be considered to clear and definite embodiment, are possible because change and add.
For example, in the above-described embodiments, AP is configured to show as the traditional base station that communicates with UE by using GSM/UMTS/LTE agreement and licensed-in radio-frequency spectrum according to standard (under the situation that they exist) for portable terminal.Replacedly, AP can be by any other suitable technology, for example pass through bluetooth (RTM) connection, WiFi or other unauthorized mobile access (UMA) agreements, and communicate with UE, this allows by using non-GSM/UMTS/LTE bearing technology that GSM/UMTS/LTE is provided feature.
In the above-described embodiments, network can determine that access point is legal access point or personation access point.Embodiment carries out this based on MAC Address or other AP ID and determines that it is transferred into network when beginning to communicate by letter.Other embodiment make the subscriber to specify them to allow to guide by which AP their communication by the record that its IMSI of comparison (or MSISDN) creates the MAC Address (or AP ID) allowed.The subscriber is guaranteed in this measure: can not come route is carried out in his communication by his mistrustful access point.
Can use IP address, DSL ID, CLI and/or grand network radio condition in conjunction with AP MAC or other AP ID, AP is differentiated by checking that the desired value of being stored in received value with regard to specific AP and the database is complementary.The position (being that AP is just using particular fixed telephone line or DSL to connect) of AP has also been confirmed in this discriminating.This has promoted difference (differential) to charge, and for example, provides the service of discounting when coming access network with the AP that uses its home address place the subscriber.It also allows core network to prevent that (for example may disturb the place of grand network at it) in unwarranted position uses AP.
Those skilled in the art are clear that very embodiments of the invention provide the multiple mode of the information of the use that network could obtain and monitor relevant AP.Embodiments of the invention make network or AP itself can determine the IMSI that calls out by this AP or the position of MSISDN, AP ID and AP.Whether network: improving the fail safe of AP, is personation AP by detecting AP for example if can following mode using this information; Allow the user to limit whom allows communicate by their AP (AP that closes); Whether qualified the enjoyment when communicating by this AP reduced rate to detect the subscriber; And by satisfying the property adjusted requirement and control the influence of AP in the position of detecting and control AP may be in active state to grand network.

Claims (57)

1. determine that user's mobile device (1) communicates by described base station through the method for the legitimacy of the base station (20,300) that the IP transmission connects for one kind, described method comprises:
Receive initial signal via base station (20,300) from mobile device (1);
The base station (1) of initial signal is transmitted in identification;
Determine whether the base station of being discerned (20,300) is legitimate base station; And
Transmit the appropriate responsive signal to mobile device (1).
2. method according to claim 1, wherein identification step also comprises by determining that the base station identifier of distributing to the base station discerns base station (20,300).
3. method according to claim 1 and 2, wherein identification step also comprises by the Route Distinguisher of determining the base station and discerns base station (20,300).
4. according to claim 1,2 or 3 described methods, wherein Route Distinguisher comprises the IP address of base station.
5. according to claim 1,2 or 3 described methods, wherein Route Distinguisher comprises the DSL ID of base station.
6. according to the described method of aforementioned arbitrary claim, wherein determining step also comprises by the telephone number of determining the base station and discerns the base station.
7. according to claim 2,3,4,5 or 6 described methods, comprise that also the tabulation with the base station identifier of the base station identifier of base station (20,300) and preassigned legitimate base station compares, and if have coupling, determine that then the base station is a legitimate base station.
8. according to claim 3,4,5,6 or 7 described methods, also comprise the base station identifier of base station (20,300) and the base station identifier of Route Distinguisher and preassigned legitimate base station and the tabulation of Route Distinguisher are compared, if and the two all mates, determine that then the base station is a legitimate base station.
9. method according to claim 6, also comprise the base station identifier of base station (20,300) and the base station identifier of telephone number and preassigned legitimate base station and the tabulation of telephone number are compared, if and the two all mates, determine that then the base station is a legitimate base station.
10. method according to claim 8, wherein determining step comprises that also the base station identifier of determining the base station is consistent with variable Route Distinguisher, and inquires that variable Route Distinguisher supplier is to determine and the corresponding current Route Distinguisher of base station identifier of base station.
11. according to each described method among the claim 1-10, wherein the user of portable terminal (1) specifies the tabulation of the base station (20,300) that allows portable terminal (1) access in advance.
12., wherein when portable terminal (1) keeps activating, repeat legitimacy termly and determine according to the described method of aforementioned arbitrary claim.
13. according to the described method of aforementioned arbitrary claim, wherein attempt when register base station (20,300), carry out legitimacy and determine when portable terminal (1).
14. according to the described method of aforementioned arbitrary claim, wherein when portable terminal (1) by from a base station handover to another base station the time, carry out legitimacy and determine.
15. according to the described method of aforementioned arbitrary claim, wherein base station identifier comprises MAC Address.
16., comprise that determining that the user is whether qualified communicates by base station (20,300) according to the described method of aforementioned arbitrary claim.
17., comprise and determine that the user is by base station (20,300) qualified enjoyment benefit whether when communicating according to the described method of aforementioned arbitrary claim.
18. method according to claim 17, wherein benefit corresponding to the user by base station (20,300) when communicating whether qualified enjoyment rate reduce.
19. according to claim 6 or 9 described methods, wherein telephone number is determined by calling line sign (CLI).
20. method according to claim 19, wherein base station (20,300) are connected to communication network (140) via first connection, and have to second of analog network and connect, described method comprises that also base station (20,300) is connected by simulation dials the call number.
21. method according to claim 20 comprises also by simulation connecting (20,300) transmission communication from the base station that it uses DTMF (dual-tone multifrequency) tone that base station identifier is provided.
22. according to claim 20 or 21 described methods, wherein the call number relates to first treatment facility (330), and in response to from the request of first treatment facility (330) and second base station identifier is provided.
23. method according to claim 12, wherein first treatment facility (330) is configured to: in that telephone number and base station identifier are forwarded to second treatment facility (340) before, identifier and tentation data are compared.
24. communication network that comprises radio access network, described radio access network comprises a plurality of base stations (3,20,300) to be used in mobile telecommunication apparatus (1) and base station (3,20,300) wirelessly transmit data between, wherein some in base station (3) are connected to core network (12) by the cellular telecommunication transmission, and base station (20,300) some in are connected to core network (140) by IP transmission, and wherein core network (140) is configured to: at mobile telecommunication apparatus (1) to the base station (20 that connects through the IP transmission, 300) base station (20 that connects is transmitted in checking before the registration through IP, 300) legitimacy.
25. network according to claim 24, comprise that also mobile telecommunication apparatus (1) is allowed to the database through the base station identifier of the base station that IP transmission connects to its registration, and wherein core network (140) is configured to and will compares so that verify the legitimacy of base station (20,300) through the base station identifier of the base station that the IP transmission connects and the database of base station identifier.
26. network according to claim 25, wherein database comprises that also mobile telecommunication apparatus (1) is allowed to Route Distinguisher and/or the telephone number through the base station (20,300) that IP transmission connects to its registration, and wherein core network (140) be configured in addition will through the Route Distinguisher of the base station (20,300) that the IP transmission connects and/or telephone number compares with database so that the legitimacy of definite base station (20,300).
27. network according to claim 26, wherein database is configured to store admissible through the Route Distinguisher of the base station (20,300) that the IP transmission connects and/or the tabulation of telephone number, and described tabulation is specific for each mobile telecommunication apparatus (1).
28., comprise the device that is used for determining telephone number by calling line sign (CLI) according to claim 26 or 27 described networks.
29. network according to claim 28, wherein base station (20,300) are connected to network (140) and have to second of analog network via first connection and connect, and base station (20,300) can operate by analog network and dial the call number.
30. network according to claim 29, wherein base station (20,300) can operate by simulation and connect transmission communication, and it uses DTMF (dual-tone multifrequency) tone that base station identifier is provided.
31. according to claim 28 or 29 described networks, wherein the call number relates to first treatment facility (330), and in response to from the request of first treatment facility (330) and base station identifier is provided.
32. network according to claim 31, wherein first treatment facility (330) can be operated received communication and extract telephone number and base station identifier before so that identifier and tentation data are compared telephone number and base station identifier being forwarded to second treatment facility (340).
33. according to each described network in the claim 24 to 32, wherein the IP transmission connection to network comprises the DSL broadband connection.
34. according to each described network in the claim 24 to 33, wherein network comprises GSM UMTS or LTE mobile telecom network.
35., be access point wherein through the base station that the IP transmission connects according to each described network in the claim 24 to 34.
36., may further comprise the steps according to each described method in the claim 1 to 23: if the base station is not a legitimate base station, the base station of then stopping using.
37. determine that described method comprises through the method for the legitimacy of the base station (20,300) that the IP transmission connects for one kind:
Reception is from the identification signal of base station (20,300), and described signal is discerned the base station;
Receive the additional information relevant with the base station;
Sign and additional information according to the base station determine whether the base station of being discerned (20,300) is legitimate base station.
38. according to the described method of claim 37, wherein identification signal comprises the base station identifier of distributing to this base station.
39. according to claim 37 or 38 described methods, wherein additional information comprises the Route Distinguisher of base station.
40. according to the described method of claim 39, wherein Route Distinguisher comprises the DSL ID of base station.
41. according to claim 39 or 40 described methods, wherein Route Distinguisher comprises the IP address of base station.
42. according to claim 37,38,39,40 or 41 described methods, wherein additional information comprises the telephone number that is associated with the base station.
43. according to claim 37,38,39,40,41 or 42 described methods, wherein additional information comprises the network radio condition that is associated with the base station.
44. according to the described method of claim 39, also comprise the tabulation of the base station identifier of the base station identifier of base station (20,300) and Route Distinguisher and preassigned legitimate base station and Route Distinguisher, if and the two all mates, determine that then the base station is a legitimate base station.
45. according to the described method of claim 44, also comprise the base station identifier of base station and the base station identifier and the telephone number of telephone number and preassigned legitimate base station are compared, and if the two all mate, determine that then the base station is a legitimate base station.
46. according to the described method of claim 43, also comprise and to compare with the base station identifier of base station (20,300) associated base station identifier and network radio condition and preassigned legitimate base station and the tabulation of network radio condition, if and the two all mates, determine that then the base station is a legitimate base station.
47. according to each described method in the claim 37 to 46, wherein base station identifier comprises MAC Address.
48. according to claim 42 or 45 described methods, wherein telephone number is determined by calling line sign (CLI).
49. according to each described method in the claim 37 to 48, wherein base station (20,300) are connected to communication network (140) via first connection, and have to second of analog network and connect, described method comprises that also base station (20,300) is connected by simulation dials the call number.
50. according to the described method of claim 49, comprise also by simulation connecting (20,300) transmission communication that it uses DTMF (dual-tone multifrequency) tone that base station identifier is provided from the base station.
51. according to claim 49 or 50 described methods, wherein the call number relates to first treatment facility (330) and in response to from the request of first treatment facility (330) and second base station identifier is provided.
52. according to the described method of claim 51, wherein first treatment facility (330) is configured to: before identifier and tentation data are compared in that telephone number and base station identifier are forwarded to second treatment facility (340).
53. according to each described method in the claim 37 to 52, may further comprise the steps: according to the base station is illegal base station, the communication that the restricted passage base station is carried out.
54. according to each described method in the claim 37 to 53, may further comprise the steps: according to the base station is illegal base station, the base station of stopping using.
55. according to each described method in the claim 37 to 54, may further comprise the steps: according to the base station is illegal base station, does not activate the base station.
56. according to each described method in the claim 37 to 55, may further comprise the steps: according to the base station is illegal base station, the radio on the base station of stopping using.
57. according to each described method in the claim 37 to 56, may further comprise the steps: according to the base station is illegal base station, does not activate the radio on the base station.
CNA2007800458681A 2006-10-19 2007-10-19 Controlling the use of access points in a telecommunications network Pending CN101569220A (en)

Applications Claiming Priority (5)

Application Number Priority Date Filing Date Title
GB0620847.4 2006-10-19
GBGB0620847.4A GB0620847D0 (en) 2006-10-19 2006-10-19 Controlling the use of access points in a telecommunications network
GB0712622.0 2007-06-29
GB0715794.4 2007-08-14
GB0718936.8 2007-09-28

Publications (1)

Publication Number Publication Date
CN101569220A true CN101569220A (en) 2009-10-28

Family

ID=37508056

Family Applications (1)

Application Number Title Priority Date Filing Date
CNA2007800458681A Pending CN101569220A (en) 2006-10-19 2007-10-19 Controlling the use of access points in a telecommunications network

Country Status (2)

Country Link
CN (1) CN101569220A (en)
GB (1) GB0620847D0 (en)

Cited By (8)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101720088A (en) * 2009-12-28 2010-06-02 中兴通讯股份有限公司 Method and mobile phone for preventing interception in mobile phone communicating process
CN103152696A (en) * 2013-03-19 2013-06-12 沈志松 Point of interest positioning system based on WiFi (Wireless Fidelity)
CN103891332A (en) * 2011-08-12 2014-06-25 F-赛酷公司 Detection of suspect wireless access points
CN104581705A (en) * 2014-12-11 2015-04-29 深圳市金立通信设备有限公司 Terminal
CN107517182A (en) * 2016-06-16 2017-12-26 华为技术有限公司 A kind of vertical industry custom system, equipment and the method for distributing identity recognition number
CN110312205A (en) * 2019-05-31 2019-10-08 西交利物浦大学 Safe positioning method and system suitable for IPV6 network
CN112311607A (en) * 2020-11-18 2021-02-02 迈普通信技术股份有限公司 CLI configuration verification method, device, controller and readable storage medium
CN113115481A (en) * 2012-12-17 2021-07-13 皇家Kpn公司 Method, telecommunications node and telecommunications terminal

Cited By (11)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101720088A (en) * 2009-12-28 2010-06-02 中兴通讯股份有限公司 Method and mobile phone for preventing interception in mobile phone communicating process
CN103891332A (en) * 2011-08-12 2014-06-25 F-赛酷公司 Detection of suspect wireless access points
CN103891332B (en) * 2011-08-12 2016-01-20 F-赛酷公司 Detect suspicious WAP (wireless access point)
CN113115481A (en) * 2012-12-17 2021-07-13 皇家Kpn公司 Method, telecommunications node and telecommunications terminal
CN103152696A (en) * 2013-03-19 2013-06-12 沈志松 Point of interest positioning system based on WiFi (Wireless Fidelity)
CN104581705A (en) * 2014-12-11 2015-04-29 深圳市金立通信设备有限公司 Terminal
CN107517182A (en) * 2016-06-16 2017-12-26 华为技术有限公司 A kind of vertical industry custom system, equipment and the method for distributing identity recognition number
CN107517182B (en) * 2016-06-16 2020-11-17 华为技术有限公司 Vertical industry user system, equipment and method for distributing identity identification number
CN110312205A (en) * 2019-05-31 2019-10-08 西交利物浦大学 Safe positioning method and system suitable for IPV6 network
CN112311607A (en) * 2020-11-18 2021-02-02 迈普通信技术股份有限公司 CLI configuration verification method, device, controller and readable storage medium
CN112311607B (en) * 2020-11-18 2022-10-18 迈普通信技术股份有限公司 CLI configuration verification method, device, controller and readable storage medium

Also Published As

Publication number Publication date
GB0620847D0 (en) 2006-11-29

Similar Documents

Publication Publication Date Title
EP2082554B1 (en) Controlling the use of access points in a telecommunications network
US8811987B2 (en) Method and arrangement for creation of association between user equipment and an access point
CN101897208B (en) System and method for enabling transaction of femto cell information from a host terminal device to a guest terminal device
EP2476272B1 (en) Method and system for user authentication by means of a cellular mobile radio network
CN101569220A (en) Controlling the use of access points in a telecommunications network
JP5001374B2 (en) Method and system for mobility corresponding to user custom in mobile communication system
EP2227918B1 (en) Method and node to control access to a telecommunications network core
US20100144316A1 (en) Network element and method for providing access control for a cellular communication network
WO2009002488A1 (en) A method and apparatus for provisioning and authentication/registration for femtocell users on ims core network
CN103220671A (en) Method for authenticating a mobile unit attached to a femtocell that operates according to code division multiple access
US8028327B1 (en) Method and system for a low-cost-internet-base station (LCIB) granting a client device temporary access
CN102845087B (en) A kind of cordless communication network and method verifying message
JP5033914B2 (en) Mobile communication method and switching center
GB2450575A (en) Controlling the use of access points in a telecommunications network
US8355723B2 (en) Mobile communication method and exchange station
CN104284313A (en) Incoming call management method

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C12 Rejection of a patent application after its publication
RJ01 Rejection of invention patent application after publication

Application publication date: 20091028